<img height="1" width="1" style="display:none" src="https://www.facebook.com/tr?id=1076912843267184&amp;ev=PageView&amp;noscript=1">

RL Blog

Latest

Reminiscence of the Flashback

Reminiscence of the Flashback

The Flashback malware family is among the first widespread malware on MacOS. IAt first it went undetected for a couple of months, but then got a lot of attention in the spring of 2012 because it infected over 500,000 computers.
Read More
RATs in the Library

RATs in the Library

Public hosting sites present a challenge for defenders when exploited by adversaries to conceal payloads using various encoding techniques
Read More
When Malware RATs on their Owners

When Malware RATs on their Owners

The ReversingLabs Titanium Platform supports configuration extraction from over 40 different RATs/Backdoors, Keyloggers, Downloaders, Ransomware and POS malware.
Read More
The Hunt for NTCrypt: Exposing a Malicious Packer

The Hunt for NTCrypt: Exposing a Malicious Packer

ReversingLabs TitaniumCore is a static analysis engine with inspection capabilities that must overcome these obfuscation attempts. To improve visibility in our products, we continuously improve unpacking by supporting new packer formats.
Read More
Breaking the Microsoft Authenticode security model

Breaking the Microsoft Authenticode security model

Authenticode is a Microsoft code signing technology software publishers use to guarantee the origin and integrity of their applications. The vast majority of modern software applications are actively using it and depend on its integrity validation system.
Read More
Breaking the Linux Authenticode security model

Breaking the Linux Authenticode security model

Portable executable is probably the most prolific application format used for code distribution. It can be found on a wide variety of hardware and software platforms. That’s why it is no wonder that many systems, other than its native Windows, end up supporting it in one way or another.
Read More
Breaking the UEFI firmware Authenticode security model

Breaking the UEFI firmware Authenticode security model

Unified Extensible Firmware Interface (UEFI) is a specification that defines the interfaces between the operating system and the platform firmware. Originally developed by Intel, and now supported by an alliance of software and hardware vendors, UEFI quickly became a standard that displaced the legacy basic input/output system (BIOS).
Read More

    Special Reports

    Latest Blog Posts

    Chinese APT Group Exploits SOHO Routers Chinese APT Group Exploits SOHO Routers

    Conversations About Threat Hunting and Software Supply Chain Security

    Reproducible Builds: Graduate Your Software Supply Chain Security Reproducible Builds: Graduate Your Software Supply Chain Security

    Glassboard conversations with ReversingLabs Field CISO Matt Rose

    Software Package Deconstruction: Video Conferencing Software Software Package Deconstruction: Video Conferencing Software

    Analyzing Risks To Your Software Supply Chain